Privacy Policy
The short version: timed.us stores the little it needs to find time between you and the people you invite, shares it only with those people, and sells nothing to anyone.
What we collect, and why
- Sign-in identity. You sign in with Apple or Google. We receive the identifier those services give us, your display name, and your email address if you choose to share it. We never see or store a password. Authentication is handled by Firebase Authentication.
- Your profile. Your display name, your time zone and city, the hours you would rather be talking, your sleep and work hours if you set them, who may book your hours, and the "right now" state you choose to show (travelling, out of town, home busy, texts only, away). This is the whole point of the app: it is what lets a person you invited see when you are free.
- Betweens and invites. When you invite someone with a code and they accept, we record that the two of you are linked. Invite codes are random, single use, and expire after seven days.
- Moments and signals. The times you and a linked person agree to spend together, and the short signals you send each other, such as a "miss you" or a "talk now?" request and its answer.
- Device tokens. If you allow notifications, a push token so we can deliver reminders and requests. Notifications stay vague if you turn on "hide details".
What we do not collect
We do not read your contacts, calendar, location, photos or messages. We do not use advertising, analytics or tracking SDKs. If the app crashes, a crash report (device model, OS version, the app's state at the time, no personal data) goes to Firebase Crashlytics so we can fix it. Biometric data used for the optional app lock never leaves your device's secure hardware and is never visible to us.
Who can see what
Only a person you have linked with can see your profile, and only at the level you allow for that person: free or busy, free or busy plus your open hours, or everything you share. Nobody else, including other users, can look you up. Epika Labs staff do not browse user data; access to the database is for operating the service and answering your requests.
Where your data lives
Your data is stored in Google Firebase (Cloud Firestore) in the Mumbai region, protected by security rules that allow each record to be read only by the people it belongs to. Data is encrypted in transit and at rest by Google Cloud. Firebase App Check is used to keep automated clients out.
Sharing
We share data with no one except the service providers that run the app for us, Apple, Google and Firebase, each under their own privacy terms and only to the extent needed to sign you in, store your data and deliver notifications. We do not sell data and we do not share it for advertising.
Deleting your data
Settings has "Delete my account and everything in it". It removes your profile, your links, your moments and your signals, and the sign-in identity. Anything you had already shared with a linked person is removed from their view as well. You can also write to hello@epikalabs.com and we will delete it within 30 days.
Children
timed.us is not directed at children under 13 and does not knowingly process their data.
Changes
If this policy changes, the new version will be posted at this address with a new effective date. Changes that affect how your data is used will be shown in the app before they apply.
Contact
Epika Labs, India. hello@epikalabs.com